Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207281 6.5 警告
Network
Debian
LibTIFF
- LibTIFF の tif_next.c の NeXTDecode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-8784 2016-04-20 17:08 2015-12-27 Show GitHub Exploit DB Packet Storm
207282 7.5 重要
Network
Drupal
Debian
- Drupal の XML-RPC システムにおける総当たり攻撃を実行される脆弱性 CWE-Other
その他
CVE-2016-3163 2016-04-20 17:07 2016-02-24 Show GitHub Exploit DB Packet Storm
207283 5.4 警告
Network
Four Kitchens - Drupal 用 Block Class モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-3144 2016-04-20 17:07 2016-04-15 Show GitHub Exploit DB Packet Storm
207284 9.8 緊急
Network
Linux Foundation
レッドハット
- foomatic-filters の foomatic-rip の unhtmlify 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-5325 2016-04-20 16:55 2010-08-27 Show GitHub Exploit DB Packet Storm
207285 9.8 緊急
Network
openSUSE project - openSUSE および Leap の obs-service-extract_file パッケージにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-4007 2016-04-20 16:40 2016-02-20 Show GitHub Exploit DB Packet Storm
207286 8.8 重要
Network
Apache Software Foundation - Apache Ranger における親リソースレベルのアクセスの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0735 2016-04-20 16:19 2016-03-28 Show GitHub Exploit DB Packet Storm
207287 9.8 緊急
Network
Apache Software Foundation - Apache Ranger の Admin UI における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2016-0733 2016-04-20 16:19 2016-02-5 Show GitHub Exploit DB Packet Storm
207288 8.1 重要
Network
シトリックス・システムズ - Citrix Command Center の Administration Web UI サーブレットにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-7999 2016-04-20 16:18 2015-12-16 Show GitHub Exploit DB Packet Storm
207289 4.9 警告
Network
デル - Dell OpenManage Server Administrator におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-4004 2016-04-20 16:12 2016-02-22 Show GitHub Exploit DB Packet Storm
207290 6.5 警告
Network
Debian
OptiPNG
- OptiPNG の pngxtern/pngxrbmp.c の bmp_read_rows 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-2191 2016-04-20 16:11 2016-04-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354051 - aol aol_server AOL AOLserver 3.4.2 Win32 allows remote attackers to bypass authentication and read password-protected files via a URL that directly references the file. NVD-CWE-Other
CVE-2002-0100 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354052 - oracle application_server_web_cache An installer program for Oracle9iAS Web Cache 2.0.0.x creates executable and configuration files with insecure permissions, which allows local users to gain privileges by (1) running webcached or (2)… NVD-CWE-Other
CVE-2002-0103 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354053 - aftpd aftpd AFTPD 5.4.4 allows remote attackers to gain sensitive information via a CD (CWD) ~ (tilde) command, which causes a core dump. NVD-CWE-Other
CVE-2002-0104 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354054 - caldera unixware CDE dtlogin in Caldera UnixWare 7.1.0, and possibly other operating systems, allows local users to gain privileges via a symlink attack on /var/dt/Xerrors since /var/dt is world-writable. NVD-CWE-Other
CVE-2002-0105 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354055 - bea weblogic_server BEA Systems Weblogic Server 6.1 allows remote attackers to cause a denial of service via a series of requests to .JSP files that contain an MS-DOS device name. NVD-CWE-Other
CVE-2002-0106 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354056 - cacheflow cacheos Web administration interface in CacheFlow CacheOS 4.0.13 and earlier allows remote attackers to obtain sensitive information via a series of GET requests that do not end in with HTTP/1.0 or another v… NVD-CWE-Other
CVE-2002-0107 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354057 - linksys befn2ps4
befsr41
befsr81
Linksys EtherFast BEFN2PS4, BEFSR41, and BEFSR81 Routers, and possibly other products, allow remote attackers to gain sensitive information and cause a denial of service via an SNMP query for the def… NVD-CWE-Other
CVE-2002-0109 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354058 - nevrona_designs miramail Nevrona Designs MiraMail 1.04 and earlier stores authentication information such as POP usernames and passwords in plaintext in a .ini file, which allows an attacker to gain privileges by reading the… NVD-CWE-Other
CVE-2002-0110 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354059 - funsoft dinos_webserver Directory traversal vulnerability in Funsoft Dino's Webserver 1.2 and earlier allows remote attackers to read files or execute arbitrary commands via a .. (dot dot) in the URL. NVD-CWE-Other
CVE-2002-0111 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm
354060 - etype eserv Etype Eserv 2.97 allows remote attackers to view password protected files via /./ in the URL. NVD-CWE-Other
CVE-2002-0112 2016-10-18 11:16 2002-03-25 Show GitHub Exploit DB Packet Storm